Add SBOM for gradle plugins

^KTI-1299
This commit is contained in:
Bogdan Mukvich
2023-07-17 14:46:37 +02:00
committed by Space Team
parent b6e8937077
commit 3aee0ab994
3 changed files with 19 additions and 4 deletions
@@ -65,18 +65,33 @@ val commonSourceSetName = "common"
*/
fun Project.configureCommonPublicationSettingsForGradle(
signingRequired: Boolean,
sbom: Boolean = true,
) {
plugins.withId("maven-publish") {
configureDefaultPublishing(signingRequired)
extensions.configure<PublishingExtension> {
publications
.withType<MavenPublication>()
.configureEach {
configureKotlinPomAttributes(project)
if (sbom) {
if (name == "pluginMaven") {
val sbomTask = configureSbom(target = "PluginMaven")
artifact("$buildDir/spdx/PluginMaven/PluginMaven.spdx.json") {
extension = "spdx.json"
builtBy(sbomTask)
}
} else if (name == "Main") {
val sbomTask = configureSbom()
artifact("$buildDir/spdx/MainPublication/MainPublication.spdx.json") {
extension = "spdx.json"
builtBy(sbomTask)
}
}
}
}
}
}
configureDefaultPublishing(signingRequired)
}
/**